Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Prosím o kontrolu

#1 Příspěvek od Es1cko »

Dobrý den,
potřeboval bych zkontrolovat log
protože mám 3 problémy
1.http://localhost:9719/speedDial/ (Hodí mě to tam když si dám novou záložku)
2.This website has been blocked for you! Google,youtube,facebook.. myslím že se to tu řešilo měl sem avast možná je to tím
3.A ještě se mi do prohlížeče motá basicscan.com (je to otravný,ani ho nemám jako domov.stránku)

Aneb když matka byla u PC :arcisit:

Předem díky!

RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Milada at 2013-03-27 18:11:59
Microsoft Windows 7 Home Premium
System drive C: has 247 GB (52%) free of 477 GB
Total RAM: 4094 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:12:22, on 27.3.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Windows\PixArt\Pac207\Monitor.exe
C:\Program Files (x86)\Steam\steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe
C:\Program Files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe
C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files\trend micro\Milada.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: InnoGames International Toolbar - {942cd1d4-9cc1-4d31-876a-ea8f489f7a59} - C:\Program Files (x86)\InnoGames_International\prxtbInn2.dll
R3 - URLSearchHook: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:\Program Files (x86)\Zynga\tbZyn1.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 184.22.81.15 www.imeetzu.com
O1 - Hosts: 184.22.81.15 imeetzu.com
O1 - Hosts: 184.22.81.15 www.omegle.com
O1 - Hosts: 184.22.81.15 omegle.com
O1 - Hosts: 184.22.81.15 www.runescape.com
O1 - Hosts: 184.22.81.15 runescape.com
O1 - Hosts: 184.22.81.15 google.com
O1 - Hosts: 184.22.81.15 www.google.ae
O1 - Hosts: 184.22.81.15 www.google.com.af
O1 - Hosts: 184.22.81.15 www.google.com.ag
O1 - Hosts: 184.22.81.15 www.google.off.ai
O1 - Hosts: 184.22.81.15 www.google.am
O1 - Hosts: 184.22.81.15 www.google.com.ar
O1 - Hosts: 184.22.81.15 www.google.as
O1 - Hosts: 184.22.81.15 www.google.at
O1 - Hosts: 184.22.81.15 www.google.com.au
O1 - Hosts: 184.22.81.15 www.google.az
O1 - Hosts: 184.22.81.15 www.google.ba
O1 - Hosts: 184.22.81.15 www.google.com.bd
O1 - Hosts: 184.22.81.15 www.google.be
O1 - Hosts: 184.22.81.15 www.google.bg
O1 - Hosts: 184.22.81.15 www.google.com.bh
O1 - Hosts: 184.22.81.15 www.google.bi
O1 - Hosts: 184.22.81.15 www.google.com.bo
O1 - Hosts: 184.22.81.15 www.google.com.br
O1 - Hosts: 184.22.81.15 www.google.bs
O1 - Hosts: 184.22.81.15 www.google.co.bw
O1 - Hosts: 184.22.81.15 www.google.com.bz
O1 - Hosts: 184.22.81.15 www.google.ca
O1 - Hosts: 184.22.81.15 www.google.cd
O1 - Hosts: 184.22.81.15 www.google.cg
O1 - Hosts: 184.22.81.15 www.google.ch
O1 - Hosts: 184.22.81.15 www.google.ci
O1 - Hosts: 184.22.81.15 www.google.co.ck
O1 - Hosts: 184.22.81.15 www.google.cl
O1 - Hosts: 184.22.81.15 www.google.cn
O1 - Hosts: 184.22.81.15 www.google.com.co
O1 - Hosts: 184.22.81.15 www.google.co.cr
O1 - Hosts: 184.22.81.15 www.google.com.cu
O1 - Hosts: 184.22.81.15 www.google.cz
O1 - Hosts: 184.22.81.15 www.google.de
O1 - Hosts: 184.22.81.15 www.google.dj
O1 - Hosts: 184.22.81.15 www.google.dk
O1 - Hosts: 184.22.81.15 www.google.dm
O1 - Hosts: 184.22.81.15 www.google.com.do
O1 - Hosts: 184.22.81.15 www.google.com.ec
O1 - Hosts: 184.22.81.15 www.google.ee
O1 - Hosts: 184.22.81.15 www.google.com.eg
O1 - Hosts: 184.22.81.15 www.google.es
O1 - Hosts: 184.22.81.15 www.google.com.et
O1 - Hosts: 184.22.81.15 www.google.fi
O1 - Hosts: 184.22.81.15 www.google.com.fj
O1 - Hosts: 184.22.81.15 www.google.fm
O1 - Hosts: 184.22.81.15 www.google.fr
O1 - Hosts: 184.22.81.15 www.google.ge
O1 - Hosts: 184.22.81.15 www.google.gg
O1 - Hosts: 184.22.81.15 www.google.com.gi
O1 - Hosts: 184.22.81.15 www.google.gl
O1 - Hosts: 184.22.81.15 www.google.gm
O1 - Hosts: 184.22.81.15 www.google.gr
O1 - Hosts: 184.22.81.15 www.google.com.gt
O1 - Hosts: 184.22.81.15 www.google.gy
O1 - Hosts: 184.22.81.15 www.google.com.hk
O1 - Hosts: 184.22.81.15 www.google.hn
O1 - Hosts: 184.22.81.15 www.google.hr
O1 - Hosts: 184.22.81.15 www.google.ht
O1 - Hosts: 184.22.81.15 www.google.hu
O1 - Hosts: 184.22.81.15 www.google.co.id
O1 - Hosts: 184.22.81.15 www.google.ie
O1 - Hosts: 184.22.81.15 www.google.co.il
O1 - Hosts: 184.22.81.15 www.google.co.im
O1 - Hosts: 184.22.81.15 www.google.co.in
O1 - Hosts: 184.22.81.15 www.google.is
O1 - Hosts: 184.22.81.15 www.google.it
O1 - Hosts: 184.22.81.15 www.google.co.je
O1 - Hosts: 184.22.81.15 www.google.com.jm
O1 - Hosts: 184.22.81.15 www.google.jo
O1 - Hosts: 184.22.81.15 www.google.co.jp
O1 - Hosts: 184.22.81.15 www.google.co.ke
O1 - Hosts: 184.22.81.15 www.google.kg
O1 - Hosts: 184.22.81.15 www.google.co.kr
O1 - Hosts: 184.22.81.15 www.google.kz
O1 - Hosts: 184.22.81.15 www.google.li
O1 - Hosts: 184.22.81.15 www.google.lk
O1 - Hosts: 184.22.81.15 www.google.co.ls
O1 - Hosts: 184.22.81.15 www.google.lt
O1 - Hosts: 184.22.81.15 www.google.lu
O1 - Hosts: 184.22.81.15 www.google.lv
O1 - Hosts: 184.22.81.15 www.google.com.ly
O1 - Hosts: 184.22.81.15 www.google.co.ma
O1 - Hosts: 184.22.81.15 www.google.md
O1 - Hosts: 184.22.81.15 www.google.mn
O1 - Hosts: 184.22.81.15 www.google.ms
O1 - Hosts: 184.22.81.15 www.google.com.mt
O1 - Hosts: 184.22.81.15 www.google.mu
O1 - Hosts: 184.22.81.15 www.google.mw
O1 - Hosts: 184.22.81.15 www.google.com.mx
O1 - Hosts: 184.22.81.15 www.google.com.my
O1 - Hosts: 184.22.81.15 www.google.com.na
O1 - Hosts: 184.22.81.15 www.google.com.nf
O1 - Hosts: 184.22.81.15 www.google.com.ng
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:\Program Files (x86)\Zynga\tbZyn1.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: InnoGames International - {942cd1d4-9cc1-4d31-876a-ea8f489f7a59} - C:\Program Files (x86)\InnoGames_International\prxtbInn2.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: InnoGames International Toolbar - {942cd1d4-9cc1-4d31-876a-ea8f489f7a59} - C:\Program Files (x86)\InnoGames_International\prxtbInn2.dll
O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll
O3 - Toolbar: Zynga Toolbar - {7b13ec3e-999a-4b70-b9cb-2617b8323822} - C:\Program Files (x86)\Zynga\tbZyn1.dll
O3 - Toolbar: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\SysWOW64\NeroCheck.exe
O4 - HKLM\..\Run: [4StoryPrePatch] C:\Program Files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [DATAMNGR] C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SearchProtection] C:\ProgramData\Search Protection\_run.bat
O4 - HKLM\..\Run: [Ad-Aware Antivirus] "C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher" --windows-run
O4 - HKCU\..\Run: [ImpulseFastStart] "C:\Program Files (x86)\Stardock\Impulse\Impulse.exe" /fastload
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Milada\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Milada\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files (x86)\ICQ7.5\ICQ.exe
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - http://www.battlefieldheroes.com/static ... .145.0.cab
O16 - DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} (Battlefield Play4Free Updater) - https://battlefield.play4free.com/stati ... 0.80.2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll C:\PROGRA~3\Wincert\WIN32C~1.DLL
O23 - Service: Ad-Aware Service - Lavasoft Limited - C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Ad-Aware (SBAMSvc) - Unknown owner - C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17533 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
"C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-3dcfd826-ff19-4deb-80f5-f32c5c5edcba -SystemEventPortName:HostProcess-e1fb25b6-e063-46ca-8214-5b3b44eaa8dd -IoCancelEventPortName:HostProcess-10b7eca5-bef8-46b4-87b0-800e63d91696 -NonStateChangingEventPortName:HostProcess-0a0811e4-9da4-4246-8e1e-e9d96d2ef4da -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fb5d72e8-3a83-45de-82f0-fd6b1613188c -DeviceGroupId:WpdFsGroup
WLIDSvcM.exe 1616
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE" /logon
"C:\Windows\PixArt\Pac207\Monitor.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\Steam\steam.exe" -silent
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" -s
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe"
szndesktop.exe default start
"C:\Program Files (x86)\Search Results Toolbar\Datamngr\datamngrUI.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3236 CREDAT:79925
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3236 CREDAT:210946
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3236 CREDAT:79960
"C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:3236 CREDAT:79968
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe45_ Global\UsGthrCtrlFltPipeMssGthrPipe45 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
"C:\Users\Milada\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2692266822-59540808-163102084-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2692266822-59540808-163102084-1000UA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-12-16 253584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-01-31 6304888]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4b90-AC6A-D3874F591014}]
DataMngr - C:\PROGRA~2\SEARCH~1\Datamngr\x64\BROWSE~1.DLL [2012-12-10 103864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files (x86)\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll [2003-11-03 54248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08 202144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-02-22 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7b13ec3e-999a-4b70-b9cb-2617b8323822}]
Zynga Toolbar - C:\Program Files (x86)\Zynga\tbZyn1.dll [2010-12-03 2735200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{942cd1d4-9cc1-4d31-876a-ea8f489f7a59}]
InnoGames International Toolbar - C:\Program Files (x86)\InnoGames_International\prxtbInn2.dll [2011-01-17 175912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-12-16 192144]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-01-31 4528760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4b90-AC6A-D3874F591014}]
DataMngr - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL [2012-12-10 89016]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-02-22 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f34c9277-6577-4dff-b2d7-7d58092f272f}]
Search-Results Toolbar - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll [2012-09-25 89288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-12-16 253584]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4FE6-8A56-BBB695989046} - ICQToolBar - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll [2010-11-21 1054520]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08 1619352]
{942cd1d4-9cc1-4d31-876a-ea8f489f7a59} - InnoGames International Toolbar - C:\Program Files (x86)\InnoGames_International\prxtbInn2.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files (x86)\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{7b13ec3e-999a-4b70-b9cb-2617b8323822} - Zynga Toolbar - C:\Program Files (x86)\Zynga\tbZyn1.dll [2010-12-03 2735200]
{f34c9277-6577-4dff-b2d7-7d58092f272f} - Search-Results Toolbar - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll [2012-09-25 89288]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-12-16 192144]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-08 9642528]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 2184520]
"CanonSolutionMenu"=C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
"Monitor"=C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2013-01-27 1281512]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ImpulseFastStart"=C:\Program Files (x86)\Stardock\Impulse\Impulse.exe [2008-09-16 1697080]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2013-03-15 1632680]
"Google Update"=C:\Users\Milada\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-16 116648]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-04-24 39408]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-01-08 18705664]
"cz.seznam.software.autoupdate"=C:\Users\Milada\AppData\Roaming\Seznam.cz\szninstall.exe [2012-09-13 1009288]
"cz.seznam.software.szndesktop"=C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2012-12-19 92296]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-11-24 98304]
"00PCTFW"=C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe [2010-01-12 3168216]
"NeroFilterCheck"=C:\Windows\SysWOW64\NeroCheck.exe [2001-07-09 155648]
"4StoryPrePatch"=C:\Program Files (x86)\Gameforge4D\4Story_CZ\PrePatch.exe [2011-12-24 327680]
"amd_dc_opt"=C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2008-07-22 77824]
"DATAMNGR"=C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE [2012-12-10 1683008]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2012-10-25 421888]
"SearchProtection"=C:\ProgramData\Search Protection\_run.bat []
"Ad-Aware Antivirus"=C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareLauncher --windows-run []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll C:\PROGRA~3\Wincert\WIN64C~1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SBAMSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-03-27 18:05:37 ----D---- C:\Program Files\trend micro
2013-03-27 18:04:31 ----D---- C:\Program Files (x86)\trend micro
2013-03-27 18:04:29 ----D---- C:\rsit
2013-03-20 14:16:51 ----D---- C:\Users\Milada\AppData\Roaming\LavasoftStatistics
2013-03-20 14:16:50 ----D---- C:\ProgramData\Ad-Aware Antivirus
2013-03-20 14:15:16 ----D---- C:\ProgramData\Lavasoft
2013-03-20 14:15:15 ----D---- C:\Program Files (x86)\Ad-Aware Antivirus
2013-03-20 14:14:56 ----D---- C:\ProgramData\Downloaded Installations
2013-03-20 14:14:47 ----D---- C:\ProgramData\Search Protection
2013-03-20 14:13:19 ----A---- C:\Windows\system32\sbbd.exe
2013-03-20 14:13:19 ----A---- C:\Windows\system32\drivers\gfibto.sys
2013-03-20 14:13:16 ----D---- C:\Users\Milada\AppData\Roaming\Ad-Aware Antivirus
2013-03-16 10:07:56 ----D---- C:\Users\Milada\AppData\Roaming\ftblauncher
2013-03-16 07:42:59 ----D---- C:\ProgramData\Mozilla
2013-03-16 07:42:47 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-03-15 21:54:49 ----D---- C:\Users\Milada\AppData\Roaming\.minecraft
2013-03-10 09:20:03 ----D---- C:\Users\Milada\AppData\Roaming\Seznam.cz
2013-03-02 19:08:13 ----D---- C:\Program Files (x86)\Microsoft Security Client
2013-03-02 19:07:58 ----D---- C:\Program Files\Microsoft Security Client
2013-03-02 19:07:14 ----A---- C:\Windows\system32\drivers\netio.sys
2013-03-02 19:01:29 ----D---- C:\77fa072099a5c530b8d69b36debd353e
2013-03-02 18:52:50 ----SD---- C:\Windows\SYSWOW64\Microsoft
2013-03-02 14:02:30 ----A---- C:\Windows\system32\Wdfres.dll
2013-03-02 14:02:30 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-03-02 14:02:30 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-03-02 13:49:05 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-03-02 13:49:04 ----A---- C:\Windows\system32\atmlib.dll
2013-03-02 13:48:59 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-03-02 13:48:59 ----A---- C:\Windows\system32\atmfd.dll
2013-03-02 13:47:36 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-03-02 13:47:35 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-03-02 13:47:31 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-03-02 13:47:30 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-03-02 13:47:28 ----A---- C:\Windows\system32\WUDFHost.exe
2013-03-02 13:47:28 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-03-02 13:47:27 ----A---- C:\Windows\system32\WUDFx.dll
2013-03-02 13:41:08 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-03-02 13:41:08 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-03-02 13:41:08 ----A---- C:\Windows\system32\mshtmled.dll
2013-03-02 13:41:07 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-03-02 13:41:07 ----A---- C:\Windows\system32\ieui.dll
2013-03-02 13:41:06 ----A---- C:\Windows\SYSWOW64\url.dll
2013-03-02 13:41:06 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-03-02 13:41:06 ----A---- C:\Windows\system32\url.dll
2013-03-02 13:41:06 ----A---- C:\Windows\system32\ieUnatt.exe
2013-03-02 13:41:05 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-03-02 13:41:05 ----A---- C:\Windows\system32\urlmon.dll
2013-03-02 13:41:04 ----A---- C:\Windows\system32\msfeeds.dll
2013-03-02 13:41:04 ----A---- C:\Windows\system32\jscript9.dll
2013-03-02 13:41:03 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-03-02 13:41:03 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-03-02 13:41:02 ----A---- C:\Windows\system32\wininet.dll
2013-03-02 13:41:02 ----A---- C:\Windows\system32\jsproxy.dll
2013-03-02 13:41:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-03-02 13:41:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-03-02 13:41:01 ----A---- C:\Windows\system32\vbscript.dll
2013-03-02 13:41:00 ----A---- C:\Windows\system32\jscript.dll
2013-03-02 13:40:59 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-03-02 13:40:59 ----A---- C:\Windows\system32\iertutil.dll
2013-03-02 13:40:58 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-03-02 13:40:56 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-03-02 13:40:52 ----A---- C:\Windows\system32\mshtml.dll
2013-03-02 13:40:51 ----A---- C:\Windows\system32\ieframe.dll
2013-03-02 13:40:50 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-03-02 13:37:49 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-03-02 13:37:48 ----A---- C:\Windows\system32\tzres.dll
2013-03-02 13:37:41 ----A---- C:\Windows\system32\wintrust.dll
2013-03-02 13:37:40 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-03-02 13:37:33 ----A---- C:\Windows\system32\Wpc.dll
2013-03-02 13:37:32 ----A---- C:\Windows\system32\gameux.dll
2013-03-02 13:37:31 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-03-02 13:37:31 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-03-02 13:36:00 ----A---- C:\Windows\system32\synceng.dll
2013-03-02 13:35:59 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-03-02 13:35:24 ----A---- C:\Windows\system32\KernelBase.dll
2013-03-02 13:35:23 ----A---- C:\Windows\system32\wow64win.dll
2013-03-02 13:35:23 ----A---- C:\Windows\system32\kernel32.dll
2013-03-02 13:35:22 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-03-02 13:35:22 ----A---- C:\Windows\system32\winsrv.dll
2013-03-02 13:35:22 ----A---- C:\Windows\system32\conhost.exe
2013-03-02 13:35:21 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-03-02 13:35:21 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-03-02 13:35:21 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-03-02 13:35:21 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-03-02 13:35:21 ----A---- C:\Windows\system32\ntvdm64.dll
2013-03-02 13:35:20 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-03-02 13:35:20 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-03-02 13:35:20 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-03-02 13:35:20 ----A---- C:\Windows\system32\wow64.dll
2013-03-02 13:35:18 ----A---- C:\Windows\system32\wow64cpu.dll
2013-03-02 13:35:16 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-03-02 13:35:16 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-03-02 13:35:16 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-03-02 13:35:16 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-03-02 13:35:16 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-03-02 13:35:15 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-03-02 13:35:14 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-03-02 13:35:13 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-03-02 13:35:12 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-03-02 13:35:11 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-03-02 13:35:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-03-02 13:35:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-03-02 13:35:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-03-02 13:35:10 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-03-02 13:35:10 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-03-02 13:35:10 ----A---- C:\Windows\SYSWOW64\user.exe
2013-03-02 13:34:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-03-02 13:34:19 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-03-02 13:34:18 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-03-02 13:34:11 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-03-02 13:34:11 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-03-02 13:34:08 ----A---- C:\Windows\system32\msxml6.dll
2013-03-02 13:34:07 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-03-02 13:34:07 ----A---- C:\Windows\system32\msxml3.dll
2013-03-02 13:34:05 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-03-02 13:34:01 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-03-02 13:33:46 ----A---- C:\Windows\system32\win32k.sys
2013-03-02 13:33:44 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-03-02 13:33:44 ----A---- C:\Windows\system32\d3d10level9.dll
2013-03-02 13:33:42 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-03-02 13:33:42 ----A---- C:\Windows\system32\ncrypt.dll
2013-03-02 13:33:40 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-03-02 13:33:40 ----A---- C:\Windows\system32\usp10.dll
2013-03-02 13:33:38 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-03-02 13:33:38 ----A---- C:\Windows\system32\win32spl.dll
2013-03-02 13:33:36 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-03-02 13:33:36 ----A---- C:\Windows\system32\kerberos.dll
2013-03-02 13:33:35 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-03-02 13:33:32 ----A---- C:\Windows\system32\dpnet.dll
2013-03-02 13:33:31 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-03-02 13:21:57 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-03-02 13:21:57 ----A---- C:\Windows\system32\crypt32.dll
2013-03-02 13:21:56 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-03-02 13:21:56 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-03-02 13:21:56 ----A---- C:\Windows\system32\cryptsvc.dll
2013-03-02 13:21:56 ----A---- C:\Windows\system32\cryptnet.dll
2013-03-02 13:18:22 ----D---- C:\ProgramData\Apple Computer
2013-03-02 13:18:22 ----D---- C:\Program Files (x86)\QuickTime

======List of files/folders modified in the last 1 months======

2013-03-27 18:12:00 ----D---- C:\Temp
2013-03-27 18:05:37 ----RD---- C:\Program Files
2013-03-27 18:05:33 ----D---- C:\Users\Milada\AppData\Roaming\Skype
2013-03-27 18:04:31 ----RD---- C:\Program Files (x86)
2013-03-27 11:15:36 ----D---- C:\Windows\system32\config
2013-03-27 11:01:35 ----D---- C:\Program Files (x86)\Steam
2013-03-27 10:58:22 ----AD---- C:\ProgramData\TEMP
2013-03-25 16:03:50 ----SHD---- C:\System Volume Information
2013-03-25 07:05:31 ----D---- C:\Windows\system32\catroot2
2013-03-24 15:28:56 ----D---- C:\Windows\Minidump
2013-03-24 15:28:56 ----D---- C:\Windows
2013-03-23 14:39:46 ----D---- C:\Users\Milada\AppData\Roaming\Mozilla
2013-03-22 15:44:29 ----SHD---- C:\Windows\Installer
2013-03-22 15:41:37 ----D---- C:\Windows\system32\Tasks
2013-03-21 17:31:01 ----D---- C:\Windows\SysWOW64
2013-03-21 17:30:44 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-03-21 07:11:53 ----HD---- C:\ProgramData
2013-03-20 14:13:19 ----D---- C:\Windows\system32\drivers
2013-03-20 14:13:19 ----D---- C:\Windows\System32
2013-03-16 11:17:25 ----SD---- C:\Users\Milada\AppData\Roaming\Microsoft
2013-03-15 22:11:17 ----D---- C:\Windows\system32\NDF
2013-03-10 18:52:55 ----D---- C:\Windows\Prefetch
2013-03-10 09:23:19 ----D---- C:\Windows\Temp
2013-03-10 09:21:59 ----HD---- C:\Windows\msdownld.tmp
2013-03-10 09:21:54 ----D---- C:\Program Files (x86)\Internet Explorer
2013-03-10 09:21:51 ----D---- C:\Program Files (x86)\Seznam.cz
2013-03-03 18:32:17 ----D---- C:\Windows\rescache
2013-03-02 23:07:57 ----D---- C:\Windows\Microsoft.NET
2013-03-02 23:07:20 ----RSD---- C:\Windows\assembly
2013-03-02 20:00:23 ----D---- C:\Windows\winsxs
2013-03-02 19:55:35 ----D---- C:\Windows\system32\drivers\etc
2013-03-02 19:08:15 ----D---- C:\Windows\system32\catroot
2013-03-02 19:08:13 ----SD---- C:\ProgramData\Microsoft
2013-03-02 19:00:15 ----D---- C:\ProgramData\AVAST Software
2013-03-02 18:31:25 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-03-02 18:31:25 ----D---- C:\Windows\system32\cs-CZ
2013-03-02 18:31:19 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-03-02 18:31:18 ----D---- C:\Windows\system32\wbem
2013-03-02 18:31:06 ----D---- C:\Windows\AppPatch
2013-03-02 18:30:52 ----RSD---- C:\Windows\Fonts
2013-03-02 18:30:44 ----D---- C:\Windows\SYSWOW64\migration
2013-03-02 18:30:42 ----D---- C:\Windows\system32\migration
2013-03-02 18:30:39 ----D---- C:\Program Files\Internet Explorer
2013-03-02 18:30:30 ----D---- C:\Windows\system32\DriverStore
2013-03-02 14:15:50 ----A---- C:\Windows\win.ini
2013-03-02 13:25:26 ----D---- C:\Program Files (x86)\WinRAR
2013-03-02 13:19:29 ----D---- C:\Program Files\WinRAR
2013-03-02 13:06:09 ----D---- C:\Program Files (x86)\PC Tools Firewall Plus
2013-03-02 13:05:18 ----D---- C:\Windows\Tasks
2013-03-02 13:05:18 ----D---- C:\Windows\system32\wfp
2013-03-02 13:04:00 ----D---- C:\Windows\system32\Macromed
2013-03-02 13:04:00 ----D---- C:\Windows\system32\CodeIntegrity
2013-03-02 13:03:59 ----D---- C:\Windows\inf
2013-03-02 13:03:58 ----D---- C:\Users\Milada\AppData\Roaming\GHISLER
2013-03-02 13:03:41 ----D---- C:\Windows\registration
2013-03-02 13:03:37 ----D---- C:\Windows\SYSWOW64\Macromed
2013-03-02 13:03:29 ----D---- C:\Windows\AppCompat
2013-03-02 13:02:03 ----D---- C:\Program Files (x86)\Java
2013-03-02 13:01:59 ----D---- C:\Program Files (x86)\Common Files
2013-02-28 09:35:43 ----A---- C:\Windows\system32\aswBoot.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 gfibto;gfibto; C:\Windows\system32\drivers\gfibto.sys [2013-03-20 14456]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-01-20 230320]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2012-07-03 19600]
R1 pctgntdi;pctgntdi; \??\C:\Windows\system32\drivers\pctgntdi64.sys [2010-01-07 306648]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-01-20 130008]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-11-25 6174720]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-08 2223392]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\Windows\system32\drivers\pctNdis-PacketFilter64.sys [2010-01-12 95504]
R3 pctNDIS;PC Tools Driver; C:\Windows\system32\DRIVERS\pctNdis64.sys [2010-01-07 81584]
R3 pctplfw;pctplfw; \??\C:\Windows\System32\drivers\pctplfw64.sys [2010-01-13 164496]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
S1 abtsnpiw;abtsnpiw; \??\C:\Windows\system32\drivers\abtsnpiw.sys []
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2008-05-02 23552]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2008-05-02 18432]
S3 PAC207;SoC PC-Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2006-12-05 572416]
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2008-05-02 8704]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2008-05-02 8704]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]
S3 X6va007;X6va007; \??\C:\Temp\007360E.tmp []
S3 X6va008;X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 []
S3 X6va009;X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 []
S3 X6va010;X6va010; \??\C:\Windows\SysWOW64\Drivers\X6va010 []
S3 X6va011;X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ad-Aware Service;Ad-Aware Service; C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [2013-02-21 1236336]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2009-11-25 202752]
R2 ICQ Service;ICQ Service; C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-11-21 247608]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-01-27 22056]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe [2009-11-09 818432]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-10-26 75136]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-01-31 3289208]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-01-27 379360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-01-23 133104]
S2 SBAMSvc;Ad-Aware; C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-01-08 161536]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-21 253656]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-01-23 133104]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-22 194032]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2013-02-25 543144]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-06-15 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

A to nechci vědět co tam ještě bude smetí... :D

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Prohledat
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen na systemovem disku jako AdwCleaner[R?].txt, ten sem vlozte
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
  • Ukoncete vsechny programy
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Pockejte na dokonceni PreScanu
  • Zvolte moznost Prohledat (scan)
  • Po dokonceni skenu kliknete na Zpráva (Report)- otevre se log, ten sem vlozte
  • Detailni postup vc. obrazku mate zde http://forum.viry.cz/viewtopic.php?f=24&t=120452
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#3 Příspěvek od Es1cko »

Děkuju zítra sem dám logy dneska už nemam čas :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu

#4 Příspěvek od vyosek »

OK :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#5 Příspěvek od Es1cko »

Zde je log z Roguekilleru :)


RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Milada [Práva správce]
Mód : Kontrola -- Datum : 03/28/2013 08:34:52
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 1 ¤¤¤
[SUSP PATH] szndesktop.exe -- C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]

¤¤¤ ¤¤¤ Záznamy Registrů: : 11 ¤¤¤
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Milada\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[RUN][SUSP PATH] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q) [7] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-2692266822-59540808-163102084-1000[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Milada\AppData\Roaming\Seznam.cz\szninstall.exe" -c) [7] -> NALEZENO
[RUN][SUSP PATH] HKUS\S-1-5-21-2692266822-59540808-163102084-1000[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Milada\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q) [7] -> NALEZENO
[RUN][SUSP PATH] HKLM\[...]\Wow6432Node\Run : SearchProtection (C:\ProgramData\Search Protection\_run.bat) [x] -> NALEZENO
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ] HKLM\[...]\Wow6432Node\System : ConsentPromptBehaviorAdmin (0) -> NALEZENO
[HJ] HKLM\[...]\System : EnableLUA (0) -> NALEZENO
[HJ] HKLM\[...]\Wow6432Node\System : EnableLUA (0) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Nákaza : Mal.Hosts ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

184.22.81.15 www.imeetzu.com
184.22.81.15 imeetzu.com
184.22.81.15 www.omegle.com
184.22.81.15 omegle.com
184.22.81.15 www.runescape.com
184.22.81.15 runescape.com
184.22.81.15 google.com
184.22.81.15 www.google.ae
184.22.81.15 www.google.com.af
184.22.81.15 www.google.com.ag
184.22.81.15 www.google.off.ai
184.22.81.15 www.google.am
184.22.81.15 www.google.com.ar
184.22.81.15 www.google.as
184.22.81.15 www.google.at
184.22.81.15 www.google.com.au
184.22.81.15 www.google.az
184.22.81.15 www.google.ba
184.22.81.15 www.google.com.bd
184.22.81.15 www.google.be
[...]


¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: WDC WD5000AVDS-63U7B0 ATA Device +++++
--- User ---
[MBR] 9a6597662a3b1f9e7acab1f952458c4e
[BSP] 38b05b2ee15d630a6029c988c16c916e : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476836 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Dokončeno : << RKreport[1]_S_03282013_02d0834.txt >>
RKreport[1]_S_03282013_02d0834.txt

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#6 Příspěvek od Es1cko »

A ještě AdwCleaner


# AdwCleaner v2.115 - Log vytvooen 28/03/2013 v 08:38:23
# Aktualizováno 17/03/2013 Xplode
# Operaení systém : Windows 7 Home Premium (64 bits)
# Uživatel : Milada - HARDEX-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Milada\Desktop\adwcleaner.exe
# Volba [Prohledat]


***** [Služby] *****

Nalezeno : ICQ Service

***** [Soubory / Složky] *****

Složka Nalezeno : C:\Program Files (x86)\Conduit
Složka Nalezeno : C:\Program Files (x86)\ConduitEngine
Složka Nalezeno : C:\Program Files (x86)\ICQ6Toolbar
Složka Nalezeno : C:\Program Files (x86)\InnoGames_International
Složka Nalezeno : C:\Program Files (x86)\search results toolbar
Složka Nalezeno : C:\Program Files (x86)\Zynga
Složka Nalezeno : C:\Program Files (x86)\Zynga
Složka Nalezeno : C:\ProgramData\boost_interprocess
Složka Nalezeno : C:\ProgramData\Browser Manager
Složka Nalezeno : C:\ProgramData\ICQ\ICQToolbar
Složka Nalezeno : C:\ProgramData\search protection
Složka Nalezeno : C:\ProgramData\Trymedia
Složka Nalezeno : C:\Temp\{f34c9277-6577-4dff-b2d7-7d58092f272f}
Složka Nalezeno : C:\Temp\AskSearch
Složka Nalezeno : C:\Users\Milada\AppData\Local\Conduit
Složka Nalezeno : C:\Users\Milada\AppData\Local\PackageAware
Složka Nalezeno : C:\Users\Milada\AppData\Local\RavenBleuSA
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\Conduit
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\ConduitEngine
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\ilividtoolbarguid
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\InnoGames_International
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\Zynga
Složka Nalezeno : C:\Users\Milada\AppData\LocalLow\Zynga
Složka Nalezeno : C:\Windows\Save
Soubor Nalezeno : C:\Program Files (x86)\Mozilla Firefox\searchplugins\adawaretb.xml
Soubor Nalezeno : C:\Windows\SysWOW64\conduitEngine.tmp

***** [Registry] *****

Data Nalezeno : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll
Data Nalezeno : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll
Data Nalezeno : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll
Data Nalezeno : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Nalezeno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{F34C9277-6577-4DFF-B2D7-7D58092F272F}]
Hodnota Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
Hodnota Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]
Klíe Nalezeno : HKCU\Software\APN DTX
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\conduitEngine
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\conduitEngine
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\InnoGames_International
Klíe Nalezeno : HKCU\Software\AppDataLow\Software\Zynga
Klíe Nalezeno : HKCU\Software\AppDataLow\Toolbar
Klíe Nalezeno : HKCU\Software\DataMngr
Klíe Nalezeno : HKCU\Software\DataMngr_Toolbar
Klíe Nalezeno : HKCU\Software\ilivid
Klíe Nalezeno : HKCU\Software\ilividtoolbarguid
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Nalezeno : HKCU\Software\Softonic
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Nalezeno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Klíe Nalezeno : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Klíe Nalezeno : HKLM\SOFTWARE\Classes\BrowserConnection.Loader
Klíe Nalezeno : HKLM\SOFTWARE\Classes\BrowserConnection.Loader.1
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Conduit.Engine
Klíe Nalezeno : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook
Klíe Nalezeno : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1
Klíe Nalezeno : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard
Klíe Nalezeno : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard.1
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Toolbar.CT2438727
Klíe Nalezeno : HKLM\SOFTWARE\Classes\Toolbar.CT2832595
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{1FDC0B61-91AC-4157-9B27-CAD9A09AB67E}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\TypeLib\{75E8DA27-44AF-40AE-927C-F2EEC99D65B1}
Klíe Nalezeno : HKLM\Software\Conduit
Klíe Nalezeno : HKLM\Software\conduitEngine
Klíe Nalezeno : HKLM\Software\conduitEngine
Klíe Nalezeno : HKLM\Software\DataMngr
Klíe Nalezeno : HKLM\Software\iLividSRTB
Klíe Nalezeno : HKLM\Software\InnoGames_International
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5004D3-DDB5-46F2-91CD-165600A6A4E5}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C39B01F-8C2B-4208-9D56-BCEEC61B1A76}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7AD531E-6F5E-4410-AA85-7079F2D91D1F}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Conduit Engine
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ICQToolbar
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividtoolbarguid
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InnoGames_International Toolbar
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
Klíe Nalezeno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Zynga Toolbar
Klíe Nalezeno : HKLM\Software\Zynga
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Klíe Nalezeno : HKLM\SOFTWARE\DataMngr
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Nalezeno : HKLM\SOFTWARE\Software
Klíe Nalezeno : HKU\S-1-5-21-2692266822-59540808-163102084-1000\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Klíe Nalezeno : HKU\S-1-5-21-2692266822-59540808-163102084-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Nalezeno : HKU\S-1-5-21-2692266822-59540808-163102084-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Nalezeno : HKU\S-1-5-21-2692266822-59540808-163102084-1000\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v9.0.8112.16464

[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd

-\\ Google Chrome v25.0.1364.172

Soubor : C:\Users\Milada\AppData\Local\Google\Chrome\User Data\Default\Preferences

Nalezeno [l.2627] : urls_to_restore_on_startup = [ "hxxp://www.google.com", "hxxp://www.searchnu.com/406", "hxxp://securesearch.lavasoft.com/?source=f439e2c0&tbp=homepage&toolbarid=adawaretb&v=2_5&u=9C262AD936B9DA60438B895149B62185" ]

*************************

AdwCleaner[R1].txt - [15497 octets] - [28/03/2013 08:38:23]

########## EOF - C:\AdwCleaner[R1].txt - [15558 octets] ##########

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu

#7 Příspěvek od vyosek »

:arrow: Spustte znovu RogueKiller
  • Pokud pouzivate Win Vista ci W7, kliknete na RogueKiller pravym a dejte Run As Administrator ci Spustit jako spravce
  • Zvolte moznost Prohledat a pote Smazat a nasledne Zprava - otevre se log, ten sem vlozte
  • Pak kliknete na Oprava Host a Zprava - otevre se log, ten sem vlozte
:arrow: Spustte znovu AdwCleaner
  • Pokud pouzivate Win Vista ci W7, kliknete na AdwCleaner pravym a dejte Run As Administrator ci Spustit jako spravce
  • Kliknete na Smazat
  • PC provede opravu, restartuje se a da Vam log (C:\AdwCleaner [S1].txt) , jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#8 Příspěvek od Es1cko »

Roguekiller:

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Milada [Práva správce]
Mód : Oprava HOSTS -- Datum : 03/28/2013 08:54:01
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Nákaza : Mal.Hosts ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

184.22.81.15 www.imeetzu.com
184.22.81.15 imeetzu.com
184.22.81.15 www.omegle.com
184.22.81.15 omegle.com
184.22.81.15 www.runescape.com
184.22.81.15 runescape.com
184.22.81.15 google.com
184.22.81.15 www.google.ae
184.22.81.15 www.google.com.af
184.22.81.15 www.google.com.ag
184.22.81.15 www.google.off.ai
184.22.81.15 www.google.am
184.22.81.15 www.google.com.ar
184.22.81.15 www.google.as
184.22.81.15 www.google.at
184.22.81.15 www.google.com.au
184.22.81.15 www.google.az
184.22.81.15 www.google.ba
184.22.81.15 www.google.com.bd
184.22.81.15 www.google.be
[...]


¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost

Dokončeno : << RKreport[3]_H_03282013_02d0854.txt >>
RKreport[1]_S_03282013_02d0834.txt ; RKreport[2]_S_03282013_02d0852.txt ; RKreport[3]_H_03282013_02d0854.txt



A jdu udělat ten AdwCleaner zatím :)

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#9 Příspěvek od Es1cko »

asi jsem udělal špatně tady ještě jednou

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.geekstogo.com/forum/files/fi ... guekiller/
Webové stránky : http://tigzy.geekstogo.com/roguekiller.php
: http://tigzyrk.blogspot.com/

Operační systém : Windows 7 (6.1.7600 ) 64 bits version
Spuštěno v : Normální režim
Uživatel : Milada [Práva správce]
Mód : Oprava HOSTS -- Datum : 03/28/2013 08:56:55
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 0 ¤¤¤

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO] ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost

Dokončeno : << RKreport[5]_H_03282013_02d0856.txt >>
RKreport[1]_S_03282013_02d0834.txt ; RKreport[2]_S_03282013_02d0852.txt ; RKreport[3]_H_03282013_02d0854.txt ; RKreport[4]_D_03282013_02d0856.txt ; RKreport[5]_H_03282013_02d0856.txt

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#10 Příspěvek od Es1cko »

a ještě AdwCleaner :)


# AdwCleaner v2.115 - Log vytvooen 28/03/2013 v 08:59:12
# Aktualizováno 17/03/2013 Xplode
# Operaení systém : Windows 7 Home Premium (64 bits)
# Uživatel : Milada - HARDEX-PC
# Spuštin systém : Normální
# Spuštino z : C:\Users\Milada\Desktop\adwcleaner.exe
# Volba [Vymazat]


***** [Služby] *****

Zastaveno & vymazáno : ICQ Service

***** [Soubory / Složky] *****

Složka Vymazáno : C:\Program Files (x86)\Conduit
Složka Vymazáno : C:\Program Files (x86)\ConduitEngine
Složka Vymazáno : C:\Program Files (x86)\ICQ6Toolbar
Složka Vymazáno : C:\Program Files (x86)\InnoGames_International
Složka Vymazáno : C:\Program Files (x86)\Zynga
Složka Vymazáno : C:\ProgramData\boost_interprocess
Složka Vymazáno : C:\ProgramData\ICQ\ICQToolbar
Složka Vymazáno : C:\ProgramData\search protection
Složka Vymazáno : C:\ProgramData\Trymedia
Složka Vymazáno : C:\Temp\{f34c9277-6577-4dff-b2d7-7d58092f272f}
Složka Vymazáno : C:\Temp\AskSearch
Složka Vymazáno : C:\Users\Milada\AppData\Local\Conduit
Složka Vymazáno : C:\Users\Milada\AppData\Local\PackageAware
Složka Vymazáno : C:\Users\Milada\AppData\Local\RavenBleuSA
Složka Vymazáno : C:\Users\Milada\AppData\LocalLow\Conduit
Složka Vymazáno : C:\Users\Milada\AppData\LocalLow\ConduitEngine
Složka Vymazáno : C:\Users\Milada\AppData\LocalLow\ilividtoolbarguid
Složka Vymazáno : C:\Users\Milada\AppData\LocalLow\InnoGames_International
Složka Vymazáno : C:\Users\Milada\AppData\LocalLow\Zynga
Složka Vymazáno : C:\Windows\Save
Soubor Vymazáno : C:\Program Files (x86)\Mozilla Firefox\searchplugins\adawaretb.xml
Soubor Vymazáno : C:\Windows\SysWOW64\conduitEngine.tmp
Vymazáno poi restartu : C:\Program Files (x86)\search results toolbar
Vymazáno poi restartu : C:\ProgramData\Browser Manager

***** [Registry] *****

Data Vymazáno : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll
Data Vymazáno : [x64] HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll
Data Vymazáno : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll
Data Vymazáno : HKLM\..\Windows [AppInit_DLLs] = C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Vymazáno : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [DataMngr]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{7B13EC3E-999A-4B70-B9CB-2617B8323822}]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{855F3B16-6D32-4FE6-8A56-BBB695989046}]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{F34C9277-6577-4DFF-B2D7-7D58092F272F}]
Hodnota Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [10]
Hodnota Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [10]
Klíe Vymazáno : HKCU\Software\APN DTX
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\Conduit
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\conduitEngine
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\InnoGames_International
Klíe Vymazáno : HKCU\Software\AppDataLow\Software\Zynga
Klíe Vymazáno : HKCU\Software\AppDataLow\Toolbar
Klíe Vymazáno : HKCU\Software\DataMngr
Klíe Vymazáno : HKCU\Software\DataMngr_Toolbar
Klíe Vymazáno : HKCU\Software\ilivid
Klíe Vymazáno : HKCU\Software\ilividtoolbarguid
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Vymazáno : HKCU\Software\Softonic
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Vymazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Klíe Vymazáno : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Klíe Vymazáno : HKLM\SOFTWARE\Classes\BrowserConnection.Loader
Klíe Vymazáno : HKLM\SOFTWARE\Classes\BrowserConnection.Loader.1
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Conduit.Engine
Klíe Vymazáno : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook
Klíe Vymazáno : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1
Klíe Vymazáno : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard
Klíe Vymazáno : HKLM\SOFTWARE\Classes\iLividIEHelper.DNSGuard.1
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Toolbar.CT2438727
Klíe Vymazáno : HKLM\SOFTWARE\Classes\Toolbar.CT2832595
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{1FDC0B61-91AC-4157-9B27-CAD9A09AB67E}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\TypeLib\{75E8DA27-44AF-40AE-927C-F2EEC99D65B1}
Klíe Vymazáno : HKLM\Software\Conduit
Klíe Vymazáno : HKLM\Software\conduitEngine
Klíe Vymazáno : HKLM\Software\DataMngr
Klíe Vymazáno : HKLM\Software\iLividSRTB
Klíe Vymazáno : HKLM\Software\InnoGames_International
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{067726DA-B033-4B30-A8FD-7F0B342ED4D8}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{23B778B5-355D-49CC-B66D-B8BD39745AC9}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6C5004D3-DDB5-46F2-91CD-165600A6A4E5}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C39B01F-8C2B-4208-9D56-BCEEC61B1A76}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7AD531E-6F5E-4410-AA85-7079F2D91D1F}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7B13EC3E-999A-4B70-B9CB-2617B8323822}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Conduit Engine
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ICQToolbar
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ilividtoolbarguid
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InnoGames_International Toolbar
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
Klíe Vymazáno : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Zynga Toolbar
Klíe Vymazáno : HKLM\Software\Zynga
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{9FF9AE6F-4553-41A7-B645-B0E88850EABF}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKLM\SOFTWARE\Classes\CLSID\{CE4DB5A3-58E6-41F1-8761-47238DF4F468}
Klíe Vymazáno : HKLM\SOFTWARE\DataMngr
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Klíe Vymazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Klíe Vymazáno : HKLM\SOFTWARE\Software

***** [Internetové prohlížeee] *****

-\\ Internet Explorer v9.0.8112.16464

Zaminino : [HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd --> hxxp://www.google.com

-\\ Google Chrome v25.0.1364.172

Soubor : C:\Users\Milada\AppData\Local\Google\Chrome\User Data\Default\Preferences

Vymazáno [l.2627] : urls_to_restore_on_startup = [ "hxxp://www.google.com", "hxxp://www.searchnu.com/406", "hxxp:[...]

*************************

AdwCleaner[R1].txt - [15604 octets] - [28/03/2013 08:38:23]
AdwCleaner[S1].txt - [13852 octets] - [28/03/2013 08:59:12]

########## EOF - C:\AdwCleaner[S1].txt - [13913 octets] ##########

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#11 Příspěvek od Es1cko »

Fakt děkuji!
Basicscan už neotravuje
Google,youtube,atd.. už funguje :)

Mám to ještě přetáhnou Anti-virákem nebo MBAMem?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu

#12 Příspěvek od vyosek »

:arrow: Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com PROSIM CTETE DUKLADNE NAVOD - TATO UTILITA MA VELKOU SCHOPNOST MAZAT A JE NUTNE JI APLIKOVAT JEN NA DOPORUCENI, JINAK VAM MUZE JIT SYSTEM DO KYTEK
:arrow: Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe
  • Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
  • Pokud mate Win XP spustte pod uctem Spravce\Administratora
  • Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
  • Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
  • Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
  • Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
  • Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
  • Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
  • Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#13 Příspěvek od Es1cko »

To tam ještě něco zůstalo? :o

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu

#14 Příspěvek od vyosek »

Aaaano, mate tam toho hooodne - tohle bylo jen prvotni vycisteni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Es1cko
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 18 srp 2012 13:21
Bydliště: Teplice

Re: Prosím o kontrolu

#15 Příspěvek od Es1cko »

A já myslel že tolik tam toho smetí nemám... nevadí jen se potřebuju kouknout na YT a jdu na to

Zamčeno